RHDHBUGS-2260: trust corporate-issued certificate#2211
Conversation
PR Build ResultsBuild failed -- 32/34 titles | 72s control-access_authentication-in-rhdhError: get-started_setting-up-and-configuring-your-first-red-hat-developer-hub-instanceError: Content Quality AssessmentCQA Report
SummaryChecks: 19 total, 19 pass, 0 fail 19 checks: 19 pass, 0 fail Run Updated 2026-05-20 15:14:23 UTC |
| ==== | ||
|
|
||
| .Prerequisites | ||
| * You have a CA-issued certificate. |
There was a problem hiding this comment.
I would rather say You have access to the public root or intermediate certificate of the CA you wish to trust., as CA-issued certificate implies that you want to use a leaf certificate, not the CA.
|
|
||
|
|
||
|
|
||
| If you want to inject multiple CAs or certificates chains, you have to: |
There was a problem hiding this comment.
I would rather merge this in the step 2 for clarity.
There was a problem hiding this comment.
done. I added it to the admonition to make sure it pops (visually)
|
|
||
|
|
||
| .Procedure | ||
| . Export the certificate from its source. |
There was a problem hiding this comment.
I would rather say: Export the corporate CA certificate chain (root and intermediate certificates) from its source.
|
|
||
| .Procedure | ||
| . Export the certificate from its source. | ||
| . Convert the certificate to `.pem` format. |
There was a problem hiding this comment.
Better to mention: Convert the certificate or the entire certificate chain to .pem format.
| ==== | ||
| . Create a secret containing the CA. | ||
| . Mount the secret into {product-very-short} environment. Follow the steps specific for your deployment method: Helm or Orchestrator. | ||
| . Set the `NODE_EXTRA_CA_CERTS` to point to the mount path of the secret. |
There was a problem hiding this comment.
I would be more explicit on how to set the env variable, as you did for the secret.
There was a problem hiding this comment.
Configmap? I'm sorry, I'm not sure what you mean. I didn't mention configmap anywhere (I think)?
| Setting the CA directly as an environmental value is not supported. | ||
| ==== | ||
| //Add link!!!!! | ||
| . OPTIONAL: Set up {rhbk} metrics. |
There was a problem hiding this comment.
I don't think metrics play any role here, this step can be omitted.
There was a problem hiding this comment.
I was a silly goose and mixed up where to mention the metrics. it's not supposed to be here, exactly as you said
There was a problem hiding this comment.
removed. I featured it by mistake
|



IMPORTANT: Do Not Merge - To be merged by Docs Team Only
Version(s):
main, release-1.10
Issue:
https://redhat.atlassian.net/browse/RHDHBUGS-2260
Preview: